Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Firewall Wizards: RE: Dumb newbie question

RE: Dumb newbie question

From: Loomis, Rip <GILBERT.R.LOOMIS_at_saic.com>
Date: Mon, 9 Aug 2004 13:20:58 -0400

I saw several other responses, but I think that they were
all missing some critical points.
 
> I'm just getting into [Debian] Linux and iptables - a definite
> newbie! [...] My question is, where is the rule script stored?
> I want to start trying my own rules but I don't know where the
> file is to modify.

You've self-assessed as a newbie, but you want to start "trying
your own rules". Rather than starting by doing iptables rules
directly, I'd recommend that you look at installing a package
that will allow you to specify rules using a syntax that's easier
to comprehend--I've had good results with the "shorewall"
package, but there are other good ones out there.

If you're really interested in security, then installing such
a package (combined with R its FM) will make it easier to construct
a rule set that makes sense. In my experience, teaching myself
a packet filter by grabbing random rules off webpages and
trying to make soup out of them can have...interesting...results.

YMMV, of course--but based on your self-assessment I wouldn't
recommend just mucking with iptables rules directly. Not saying
it won't work, but you'd learn more quickly by letting a firewall
package construct a ruleset for you and then going back and
looking at the rules it put together and figuring out what each
rule does.

--
Rip Loomis - SAIC
Brainbench MVP for Internet Security
_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
Received on Aug 12 2004
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos